Re: [clamav-users] Clamdtop not showing activity for ScanOnAccess activity?

2019-10-09 Thread Micah Snyder (micasnyd) via clamav-users
Hi Ian, It's my understanding that on-access scanning features in ClamAV 0.100 and 0.101 run in newly created threads for each scan outside of the normal clamd scanning thread pool. It's no surprise to me that clamdtop doesn't observe on-access scan activity in 0.100 or 0.101. Resource mana

[clamav-users] Clamdtop not showing activity for ScanOnAccess activity?

2019-10-09 Thread Ian via clamav-users
I’m sure I’ve done something wrong, so hopefully I can give enough detail to discover what that is... Ubuntu 18.04.3 LTS (4.15.0-1040-aws) Installed packages: ii clamav0.100.3+dfsg-0ubuntu0.18.04.1 amd64anti-virus utility for Unix - command-line int

Re: [clamav-users] Could not watch path /var/lib/docker/overlay2 error

2019-10-09 Thread Arthur Ramsey via clamav-users
I was going to try running a main clamonacc using “OnAccessMountPath /“ and a clamonacc process for each docker container or all docker containers with “OnAccessIncludetPath /var/lib/docker/overlayfs//merged” but clamd is given the container path not the real path so it can't find the file to sc

Re: [clamav-users] Error in testing clamav and no fanotify

2019-10-09 Thread Frans de Boer
On 04-10-2019 20:36, Frans de Boer wrote: On 04-10-2019 00:10, Micah Snyder (micasnyd) via clamav-users wrote: Frans, Can you provide some more details about your system?  What version of Linux are you testing on? -Micah On 10/3/19, 5:05 PM, "clamav-users on behalf of Frans de Boer" wro

Re: [clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Arthur Ramsey via clamav-users
This fixes it: ./configure && echo "#define FANOTIFY 1” >> clamav-config.h Thanks for the help, Arthur ___ clamav-users mailing list clamav-users@lists.clamav.net https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a comprehensive Cl

Re: [clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Frans de Boer
On 09-10-2019 17:54, Arthur Ramsey via clamav-users wrote: Hello, I’m trying to compile 0.102.0 on Amazon Linux 2 but the configure script isn’t detecting fanotify support: fanotify    : no (disabled) I have kernel-devel and glibc-headers installed.  I’ve also confirmed fanotify support wit

Re: [clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Gianluigi Tiesi
On 10/9/19 6:35 PM, Arthur Ramsey wrote: Here is config.log: https://pastebin.com/tq97pMwH there is bug in the order autotools composes the final configure: $want_fanotify is never defined yes when configure looks for it. My suggestion is run configure, then open clamav-config.h and #define F

Re: [clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Arthur Ramsey via clamav-users
Here is config.log: https://pastebin.com/tq97pMwH ___ clamav-users mailing list clamav-users@lists.clamav.net https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a comprehensive ClamAV guide: https://gi

Re: [clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Gianluigi Tiesi
On 10/9/19 5:54 PM, Arthur Ramsey via clamav-users wrote: Hello, I’m trying to compile 0.102.0 on Amazon Linux 2 but the configure script isn’t detecting fanotify support: fanotify    : no (disabled) I have kernel-devel and glibc-headers installed.  I’ve also confirmed fanotify support with

[clamav-users] Unable to compile 0.102.0 with fanotify support

2019-10-09 Thread Arthur Ramsey via clamav-users
Hello, I’m trying to compile 0.102.0 on Amazon Linux 2 but the configure script isn’t detecting fanotify support: fanotify: no (disabled) I have kernel-devel and glibc-headers installed. I’ve also confirmed fanotify support with "cat /boot/config- | grep FANOTIFY”. I get an error from th

Re: [clamav-users] Could not watch path /var/lib/docker/overlay2 error

2019-10-09 Thread Arthur Ramsey via clamav-users
Thanks, unfortunately the workaround isn’t practical in my case. I’ll start a new thread for the 0.102.0 fanotify support issue. ___ clamav-users mailing list clamav-users@lists.clamav.net https://lists.clamav.net/mailman/listinfo/clamav-users Help

Re: [clamav-users] Could not watch path /var/lib/docker/overlay2 error

2019-10-09 Thread Franky Van Liedekerke via clamav-users
Your bug was already reported by me. See this bug: https://bugzilla.clamav.net/show_bug.cgi?id=12306 (and it contains a workaround too) Franky Op Woensdag, 09-10-2019 om 17:32 schreef Arthur Ramsey via clamav-users: Hello, I’m trying to implement on access scanning for docker containers using

[clamav-users] Could not watch path /var/lib/docker/overlay2 error

2019-10-09 Thread Arthur Ramsey via clamav-users
Hello, I’m trying to implement on access scanning for docker containers using overlayfs by running ClamAV outside of a container. I’m using Amazon Linux 2 which is currently at 0.101.4. If I set "OnAccessMountPath /“ an eicar test file downloaded and read via a container isn’t detected. If I